options {
listen-on port 53 { any ; };
listen-on-v6 port 53 { ::1; };
directory "/var/named";
dump-file "/var/named/data/cache_dump.db";
statistics-file "/var/named/data/named_stats.txt";
memstatistics-file "/var/named/data/named_mem_stats.txt";
allow-query { any ; };
recursion yes;
# forward only;
forwarders {
119.29.29.29;
180.76.76.76;
};
dnssec-enable yes;
dnssec-validation yes;
dnssec-lookaside auto;
/* Path to ISC DLV key */
bindkeys-file "/etc/named.iscdlv.key";
managed-keys-directory "/var/named/dynamic";
};
http://superrot.blog.51cto.com/6590958/1394689
chown :named /etc/named.conf
rndc-confgen -a
chown :named /etc/rndc.key
chmod 640 /etc/rndc.key
service named start
本文介绍了如何在CentOS系统上配置DNS转发服务器,包括设置监听端口、允许查询的IP、设置DNS转发器以及启用DNSSEC验证。通过修改named配置文件并启用指定的DNS转发器地址,确保DNS查询能够正确转发。最后,文章提到了权限设置和启动named服务的步骤。
1137

被折叠的 条评论
为什么被折叠?



